Securely Managing The Ubigate Ibg3026 System Example - Samsung Ubigate iBG3026 Configuration Manual

Hide thumbs Also See for Ubigate iBG3026:
Table of Contents

Advertisement

CHAPTER 25. IPSEC
Securely Managing the Ubigate iBG3026 System
Example
This example demonstrates how to manage a router through an IP security
tunnel. Steps are presented for configuring the Router and NW2 routers to
assist any host on the LAN side of Networks-2 to manage the Router router
through the IP security tunnel.
The security requirements are:
Phase 1: 3DES with SHA1
Phase 2: IPSec ESP with 128-bit AES and HMAC-SHA1
TRUSTED
Network
10.0.1.0/24
Figure 25.1 Tunnel Mode Between Tow Security Gateways-Single Proposal
1.
Configure a WAN bundle of network type untrusted.
Router/configure# interface bundle wan1
Router/configure/interface/bundle wan1# link t1 0/2/0
Router/configure/interface/bundle wan1# encapsulation ppp
Router/configure/interface/bundle wan1# ip address
172.16.0.1 24
Router/configure/interface/bundle wan1# crypto untrusted
Router/configure/interface/bundle wan1# exit
2.
Configure the Ethernet interface with trusted network type.
Router/configure# interface ethernet 0/1
Router/configure interface/ethernet 0/1# ip address 10.0.1.1
24
Router/configure/interface/ethernet(0/1)# crypto trusted
Router/configure/interface/ethernet(0/1)# exit
258
172.16.0.1
IPSec ESP
Router 1
UNTRUSTED
172.16.0.2
Router 2
© SAMSUNG Electronics Co., Ltd.
TRUSTED
Network
10.0.2.0/24

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents